OWASP / Container-Security-Verification-Standard
Container Security Verification Standard
☆57Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for Container-Security-Verification-Standard
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆188Updated 6 years ago
- Software Component Verification Standard (SCVS)☆135Updated 7 months ago
- OWASP Kubernetes Security Testing Guide☆37Updated 2 months ago
- ☆20Updated 6 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆177Updated 5 years ago
- ☆233Updated 2 months ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆274Updated this week
- Python API library for DefectDojo☆40Updated last year
- Security scanning & static analysis tool☆93Updated last month
- Pin designs for security related items☆37Updated 6 months ago
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.☆46Updated 7 years ago
- AppSecPipeline Specification for DevOps automation.☆38Updated last year
- threatspec - continuous threat modeling, through code☆332Updated 3 years ago
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated last year
- ☆121Updated last year
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆24Updated 4 years ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆169Updated 9 months ago
- A deliberately vulnerable Kubernetes cluster☆118Updated 11 months ago
- The clever vulnerability dependency finder☆96Updated 2 years ago
- The OWASP DevSecOps Guideline explains how we can implement a secure pipeline and use best practices and introduce tools that we can use …☆61Updated 5 months ago
- SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)☆110Updated 11 months ago
- The Secure Coding Framework☆262Updated 4 years ago
- Content for OWASP Summit 2017 site☆128Updated 4 years ago
- Sample scan files for testing DefectDojo imports☆75Updated 3 weeks ago
- ☆36Updated 3 years ago
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayHub project…☆107Updated 8 months ago
- ☆61Updated last year
- Awesome resources about Security in Kubernetes☆40Updated last year
- A small tool to help developers understand a huge set of security requirements from appsec teams☆45Updated 2 years ago